Panel votes to tighten federal website security

By Adam Mazmanian

Mar 13, 2014

A bill to tighten controls on the way federal websites capture user information won approval from the House Oversight and Government Reform Committee on March 13.

The measure would require any federal website that collects personally identifiable information from users -- including name, date of birth, Social Security number, or financial information -- must be certified as safe and secure by the agency CIO before going live.

Agency and contractor personnel with access to personal information would have to sign a non-disclosure agreement specifically covering personal data. Additionally, government agencies would be required to take "reasonable efforts" to secure multiple domain registrations to avoid confusing site visitors. For example, the bill envisions a site such as HealthCare.gov also being available at HealthCare.com and HealthCare.org.

"When entering their personal information on a federal website, Americans should have the peace of mind that it will remain private, safe, and secure from hackers," said the bill's sponsor, Michigan Republican Rep. Kerry Bentivolio.

The bill also includes an amendment from Rep. Gerry Connolly (D-Va.) that would require agencies to notify individuals whose information may have been disclosed in a security breach within 72 hours of the incident, and to report breaches to a federal cybersecurity center.

The committee also approved a bill to end the requirement that the Government Printing Office physically print the Federal Register, while easing constraints on how agencies submit notices to the GPO for inclusion in the Federal Register.

About the Author

Adam Mazmanian is executive editor of FCW.

Before joining the editing team, Mazmanian was an FCW staff writer covering Congress, government-wide technology policy, health IT and the Department of Veterans Affairs. Prior to joining FCW, Mr. Mazmanian was technology correspondent for National Journal and served in a variety of editorial at B2B news service SmartBrief. Mazmanian started his career as an arts reporter and critic, and has contributed reviews and articles to the Washington Post, the Washington City Paper, Newsday, Architect magazine, and other publications. He was an editorial assistant and staff writer at the now-defunct New York Press and arts editor at the About.com online network in the 1990s, and was a weekly contributor of music and film reviews to the Washington Times from 2007 to 2014.